[Gllug] Fun with PPTP and Proxy-ARP bridging firewalls

Mike Brodbelt mike at coruscant.demon.co.uk
Thu Oct 4 16:27:58 UTC 2001


* Rob Andrews <rob at impure.org.uk> [011004 10:11]:
> Hi folks (& hopefully network bods),
> 
> A few inconclusive googles have showed me that, since I can't get a PPTP VPN
> link to a remote host, that my problem is that GRE tunnels can't pass
> through Proxy-ARP bridge firewalls. My network looks like this[0]:
> 

>From memory (it's been a while since I set this up), you need to have
your firewalling rules permit GRE over IP. This is protocol type 17,
IIRR, and there is a kernel compile time option to allow it. Your kernel
needs this capability before you can configure firewalling rules to
allow GRE tunnels.

Mike.

-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list